Server | nginx |
Content-Type | text/html; charset=utf-8 |
Transfer-Encoding | chunked |
Connection | keep-alive |
Vary | Accept-Encoding |
Pragma | no-cache |
Cache-Control | private, max-age=0, no-cache, no-store, must-revalidate |
X-Frame-Options | SAMEORIGIN |
Content-Encoding | gzip |
X-XSS-Protection | 1; mode=block |
Access-Control-Max-Age | 3600 |
X-Content-Type-Options | nosniff |
Access-Control-Allow-Origin | * |
Access-Control-Allow-Headers | Origin, Content-Type, Accept, Authorization |
Access-Control-Allow-Methods | GET, POST, OPTIONS, DELETE, PUT |
Access-Control-Allow-Credentials | true |
X-ruxit-JS-Agent | true |
Strict-Transport-Security | max-age=31536000; includeSubDomains, max-age=15768000 |